lead-qualification

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: Indirect Prompt Injection vulnerability surface. The skill is designed to fetch and process content from untrusted external sources (websites and search results).
  • Ingestion points: Content retrieved from company websites and search engine results via WebFetch and WebSearch.
  • Boundary markers: The instructions lack specific delimiters or instructions to the agent to disregard instructions found within the fetched content.
  • Capability inventory: The skill is configured with access to tools including Bash and Write, which increases the potential impact if the agent follows malicious instructions from an external source.
  • Sanitization: There are no mechanisms specified to sanitize or validate the external data before it is analyzed.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 06:43 AM
Security Audit — agent-trust-hub — lead-qualification